Is there any way to get the list of alerts created in Splunk last month or last week trended?
HI Bob,
try this,
| rest /servicesNS/-/-/saved/searches splunk_server=local | search disabled=0 actions=* is_scheduled=1 | table title eai:acl.app eai:acl.owner cron_schedule actions
it gives to count of alerts created/ triggered for a period of time
Hi pruthvi
i need only the alerts generated on feb month how to do?
Do you mean new alerts created and scheduled to run or those that have recently triggered?